2025 CVE Vulnerabilities
45,145 CVEs published in 2025.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2025-52870 | HIGH | 8.1 | 0.4% | Feb 11, 2026 | A buffer overflow vulnerability has been reported to affect Qsync Central. If a remote attacker gains a user account, th... |
| CVE-2025-52869 | HIGH | 8.1 | 0.4% | Feb 11, 2026 | A buffer overflow vulnerability has been reported to affect Qsync Central. If a remote attacker gains a user account, th... |
| CVE-2025-52868 | HIGH | 8.1 | 0.3% | Feb 11, 2026 | A buffer overflow vulnerability has been reported to affect Qsync Central. If a remote attacker gains a user account, th... |
| CVE-2025-48725 | HIGH | 8.1 | 0.4% | Feb 11, 2026 | A buffer overflow vulnerability has been reported to affect several QNAP operating system versions. If a remote attacker... |
| CVE-2025-48724 | HIGH | 8.1 | 0.4% | Feb 11, 2026 | A buffer overflow vulnerability has been reported to affect Qsync Central. If a remote attacker gains a user account, th... |
| CVE-2025-48723 | HIGH | 8.1 | 0.4% | Feb 11, 2026 | A buffer overflow vulnerability has been reported to affect Qsync Central. If a remote attacker gains a user account, th... |
| CVE-2025-48722 | MEDIUM | 6.5 | 0.4% | Feb 11, 2026 | A NULL pointer dereference vulnerability has been reported to affect Qsync Central. If a remote attacker gains a user ac... |
| CVE-2025-47209 | MEDIUM | 6.5 | 0.4% | Feb 11, 2026 | A NULL pointer dereference vulnerability has been reported to affect Qsync Central. If a remote attacker gains a user ac... |
| CVE-2025-47205 | MEDIUM | 4.9 | 0.4% | Feb 11, 2026 | A NULL pointer dereference vulnerability has been reported to affect several QNAP operating system versions. If a remote... |
| CVE-2025-30276 | HIGH | 8.8 | 0.5% | Feb 11, 2026 | An out-of-bounds write vulnerability has been reported to affect Qsync Central. If a remote attacker gains a user accoun... |
| CVE-2025-30269 | HIGH | 8.1 | 0.3% | Feb 11, 2026 | A use of externally-controlled format string vulnerability has been reported to affect Qsync Central. If a remote attack... |
| CVE-2025-30266 | MEDIUM | 6.5 | 0.4% | Feb 11, 2026 | A NULL pointer dereference vulnerability has been reported to affect Qsync Central. If a remote attacker gains a user ac... |
| CVE-2025-8099 | HIGH | 7.5 | 0.4% | Feb 11, 2026 | GitLab has remediated an issue in GitLab CE/EE affecting all versions from 10.8 before 18.6.6, 18.7 before 18.7.4, and 1... |
| CVE-2025-7659 | CRITICAL | 9.1 | 0.2% | Feb 11, 2026 | GitLab has remediated an issue in GitLab CE/EE affecting all versions from 18.2 before 18.6.6, 18.7 before 18.7.4, and 1... |
| CVE-2025-14594 | LOW | 3.5 | 0.2% | Feb 11, 2026 | GitLab has remediated an issue in GitLab CE/EE affecting all versions from 17.11 before 18.6.6, 18.7 before 18.7.4, and ... |
| CVE-2025-14592 | MEDIUM | 5.3 | 0.3% | Feb 11, 2026 | GitLab has remediated an issue in GitLab CE/EE affecting all versions from 18.6 before 18.6.6, 18.7 before 18.7.4, and 1... |
| CVE-2025-14560 | MEDIUM | 5.4 | 0.2% | Feb 11, 2026 | GitLab has remediated an issue in GitLab CE/EE affecting all versions from 17.1 before 18.6.6, 18.7 before 18.7.4, and 1... |
| CVE-2025-12575 | MEDIUM | 5.4 | 0.2% | Feb 11, 2026 | GitLab has remediated an issue in GitLab EE affecting all versions from 18.0 before 18.6.6, 18.7 before 18.7.4, and 18.8... |
| CVE-2025-12073 | MEDIUM | 4.3 | 0.2% | Feb 11, 2026 | GitLab has remediated an issue in GitLab CE/EE affecting all versions from 18.0 before 18.6.6, 18.7 before 18.7.4, and 1... |
| CVE-2025-10174 | HIGH | 8.3 | 0.1% | Feb 11, 2026 | Cleartext Transmission of Sensitive Information vulnerability in Pan Software & Information Technologies Ltd. PanCafe Pr... |
| CVE-2025-15096 | HIGH | 8.8 | 0.3% | Feb 11, 2026 | The 'Videospirecore Theme Plugin' plugin for WordPress is vulnerable to privilege escalation via account takeover in all... |
| CVE-2025-9986 | HIGH | 8.2 | 0.2% | Feb 11, 2026 | Exposure of Sensitive System Information to an Unauthorized Control Sphere vulnerability in Vadi Corporate Information S... |
| CVE-2025-15440 | HIGH | 7.2 | 0.4% | Feb 11, 2026 | The iONE360 configurator plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the Contact Form Paramet... |
| CVE-2025-13651 | HIGH | 7.5 | 0.4% | Feb 11, 2026 | Exposure of Sensitive System Information to an Unauthorized Actor vulnerability in Microcom ZeusWeb allows Web Applicati... |
| CVE-2025-13650 | MEDIUM | 6.1 | 0.2% | Feb 11, 2026 | An attacker with access to the web application ZeusWeb of the provider Microcom (in this case, registration is not neces... |
Check if your code is affected by 2025 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now